From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.2 (2018-09-13) on dcvr.yhbt.net X-Spam-Level: X-Spam-Status: No, score=-3.8 required=3.0 tests=AWL,BAYES_00,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,HEADER_FROM_DIFFERENT_DOMAINS, MAILING_LIST_MULTI,SPF_HELO_PASS,SPF_PASS shortcircuit=no autolearn=ham autolearn_force=no version=3.4.2 Received: from sourceware.org (server2.sourceware.org [IPv6:2620:52:3:1:0:246e:9693:128c]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by dcvr.yhbt.net (Postfix) with ESMTPS id 46F981F5AE for ; Thu, 30 Jul 2020 11:52:16 +0000 (UTC) Received: from server2.sourceware.org (localhost [IPv6:::1]) by sourceware.org (Postfix) with ESMTP id 2D70A3844035; Thu, 30 Jul 2020 11:52:10 +0000 (GMT) Received: from hall.aurel32.net (hall.aurel32.net [IPv6:2001:bc8:30d7:100::1]) by sourceware.org (Postfix) with ESMTPS id A90603858D35 for ; Thu, 30 Jul 2020 11:52:07 +0000 (GMT) DMARC-Filter: OpenDMARC Filter v1.3.2 sourceware.org A90603858D35 Authentication-Results: sourceware.org; dmarc=none (p=none dis=none) header.from=aurel32.net Authentication-Results: sourceware.org; spf=none smtp.mailfrom=aurelien@aurel32.net DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=aurel32.net ; s=202004.hall; h=In-Reply-To:Content-Transfer-Encoding:Content-Type: MIME-Version:References:Message-ID:Subject:Cc:To:From:Date:From:Reply-To: Subject:Content-ID:Content-Description:X-Debbugs-Cc; bh=ybWB79C96zAVZgZr2gQA5moLw5H3wtI/wzGiduMEQAc=; b=LgN1bfkyaSQ9xLietZH8qSJ/QJ 86uaYBSyAo1bhAFlzzBd/55IohvxLHCaeLd7QBr4qJUorrgLLcujXzZK50tqwI/IE4evnISqnThGv o7clHnF1yVtdMs3SiFwx59wBfTpsxnu/EU0NvfDO/A95OvvivuekQCdZ9/5m6Ddbt7NOXT2vjjLRy Iui/DPCnjO0SWu/lD6ZaDPjZ4tXDuyhsjCQaNfsnfSR66r7zcsdrWVAMLwkeat3wiICbCB9bPvdvZ 3RqgdQ2isZMBMaFZ0G7EVK2+u1CuVLU4929ZhaJsYQHSmPqTLxybYPYPIh9oFFDnbVSLqQmL9fo7o Uk9Ti2cw==; Received: from ohm.aurel32.net ([2001:bc8:30d7:111::1000]) by hall.aurel32.net with esmtpsa (TLS1.3:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.92) (envelope-from ) id 1k176U-0006kQ-9V; Thu, 30 Jul 2020 13:52:06 +0200 Received: from aurel32 by ohm.aurel32.net with local (Exim 4.94) (envelope-from ) id 1k176R-00EsO5-Om; Thu, 30 Jul 2020 13:52:03 +0200 Date: Thu, 30 Jul 2020 13:52:03 +0200 From: Aurelien Jarno To: Florian Weimer Subject: Re: [PATCH] Add NEWS entry for CVE-2016-10228 (bug 19519) Message-ID: <20200730115203.GA3545621@aurel32.net> Mail-Followup-To: Florian Weimer , libc-alpha@sourceware.org References: <20200730080830.1920521-1-aurelien@aurel32.net> <87pn8djsf6.fsf@oldenburg2.str.redhat.com> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Disposition: inline Content-Transfer-Encoding: quoted-printable In-Reply-To: <87pn8djsf6.fsf@oldenburg2.str.redhat.com> User-Agent: Mutt/1.14.5 (2020-06-23) X-BeenThere: libc-alpha@sourceware.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: Libc-alpha mailing list List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Cc: libc-alpha@sourceware.org Errors-To: libc-alpha-bounces@sourceware.org Sender: "Libc-alpha" On 2020-07-30 10:52, Florian Weimer wrote: > * Aurelien Jarno: >=20 > > diff --git a/NEWS b/NEWS > > index 1ef4a0a7a47..1625e55cccb 100644 > > --- a/NEWS > > +++ b/NEWS > > @@ -154,6 +154,10 @@ Changes to build and runtime requirements: > > =20 > > Security related changes: > > =20 > > + CVE-2016-10228: An infinite loop has been fixed in the iconv program= when > > + invoked with the -c option and when processing invalid multi-byte in= put > > + sequences. >=20 > I think this should say =E2=80=9CReported by Jan Engelhardt.=E2=80=9D >=20 Good point, I have just sent a v2 fixing that. Aurelien --=20 Aurelien Jarno GPG: 4096R/1DDD8C9B aurelien@aurel32.net http://www.aurel32.net